Описание
The FontManager._get_nix_font_path function in formatters/img.py in Pygments 1.2.2 through 2.0.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a font name.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 2.0.1+dfsg-1.1ubuntu1 |
| esm-infra-legacy/trusty | released | 1.6+dfsg-1ubuntu1.1 |
| precise | released | 1.4+dfsg-2ubuntu0.1 |
| trusty | released | 1.6+dfsg-1ubuntu1.1 |
| trusty/esm | released | 1.6+dfsg-1ubuntu1.1 |
| upstream | needs-triage | |
| vivid | released | 2.0.1+dfsg-1svn1.1 |
| wily | released | 2.0.1+dfsg-1.1svn1.1 |
Показывать по
EPSS
9.3 Critical
CVSS2
9 Critical
CVSS3
Связанные уязвимости
The FontManager._get_nix_font_path function in formatters/img.py in Pygments 1.2.2 through 2.0.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a font name.
The FontManager._get_nix_font_path function in formatters/img.py in Pygments 1.2.2 through 2.0.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a font name.
The FontManager._get_nix_font_path function in formatters/img.py in Py ...
EPSS
9.3 Critical
CVSS2
9 Critical
CVSS3